xelys jobs xelys jobs

Security Engineer

Sundayy

seniorpermanentsecurity United States Today via LinkedIn

See how well this job matches your profile

Sign up to get an AI match score and generate a tailored application in seconds.

Get your match score

Tags

Application SecuritySASTDASTSCAContainer SecurityOWASP Top 10CI/CDBurp SuiteKubernetes SecurityCIS Benchmarks

About the role

Role Overview

Join the security team as an Application Security Engineer. You’ll strengthen the organization’s application security posture by building and automating security testing—especially SAST and DAST—and supporting container security initiatives.

Responsibilities

  • Develop and implement security testing automation for containers, SCA, SAST, and DAST tools.
  • Create, enforce, and update security policies/procedures/standards for container development and deployment.
  • Triages and validates security vulnerabilities; communicate findings to application owners with actionable remediation recommendations.
  • Perform manual security testing across web applications/services and native/mobile applications.
  • Identify vulnerabilities using OWASP Top 10, CVE databases, and other security frameworks; propose security design/implementation improvements.
  • Collaborate with engineering and operations to embed security into CI/CD pipelines and automate security workflows.
  • Build scripts/tools to automate repetitive security tasks and improve efficiency and accuracy.

Requirements

  • Bachelor’s degree in Computer Science, Information Security, Computer Engineering, or related field.
  • 3+ years of professional security engineering experience, focused on security testing and container security plus SCA/SAST/DAST.
  • Hands-on experience with container security tooling (image scanning, vulnerability management).
  • Knowledge of security principles and standards including CIS benchmarks and OWASP Top 10.
  • Experience with security testing tools such as Kali Linux, Burp Suite, Checkmarx, Netsparker, Coverity, Prisma, or similar.
  • Familiarity with IAST and IRASP (app self-protection techniques).
  • Relevant certifications such as Docker Certified Security Specialist or Certified Kubernetes Security Specialist (or equivalent).
  • Strong analytical/problem-solving skills and ability to communicate effectively across teams.

Nice to Have

  • Certifications and deeper expertise around container security and modern security automation integrations.

About Sundayy

Zoom Video Communications provides unified communication and collaboration tools that help people connect and work together from anywhere. Its product suite includes offerings such as Zoom Contact Center, Zoom Phone, Zoom Events, Zoom Apps, Zoom Rooms, and Zoom Webinars, with a strong focus on innovation, customer centricity, and inclusive culture.

Scraped 8/6/2026